Skip to main content
POST
Drop the service's cached copy of your venue credentials

Authorizations

X-Client-Id
string
header
required

Credential client id (kairos_ck_...). Must be sent together with X-Api-Key and X-Api-Secret.

X-Api-Key
string
header
required

64-char hex API key.

X-Api-Secret
string
header
required

64-char hex API secret.

Body

application/json

Body for POST /credentials/invalidate.

user_id
string
required

Must equal the authenticated caller's id — a mismatch is a 403.

exchange_id
string | null

Omit to invalidate the cached credentials for EVERY registered exchange. NOT canonicalized, so a deprecated alias such as kalshi_offchain may 404.

Response

Cache evicted.

success
boolean
required

Always true on the success path.